Severity: Medium Analysis Summary Three security bypass vulnerabilities (CVE-2019-0627, CVE-2019-0631 and CVE-2019-0632) have been found in Microsoft PowerShell Core which could allow an attacker to bypass […]
Severity: Medium Analysis Summary An Out-of-bounds Read vulnerability is found in Delta Industrial Automation CNCSoft. The vulnerability is due to improper user input validation for processing […]
Severity: HIGH Analysis Summary: Rietspoof is a new malware family which uses a multi-stage delivery system to drop multiple payloads on the systems it infects. However, the […]
Severity: High Analysis Summary The attackers exploited a zero-day in the PLC firmware in order to inject a Remote Access Trojan (RAT) with escalated privileges into […]
Severity: Medium Analysis Summary A new malspam campaign has been observed dropping malicious links. This phishing campaign uses the subject of “Transaction Refund” and the emails […]
Severity: Medium Analysis Summary MalSpam Phishing campaigns have been observed targeting financial organizations to drop malware. The campaigns include: Emotet Phishing: This campaign drops the emotet […]
Severity: HIGH Analysis Summary A stack-based buffer overflow may allow remote attackers to execute arbitrary code on embedded platforms via traffic on Port 2947/TCP or crafted […]
Severity: HIGH Analysis Summary Security analysts have found a bait document being circulated in the Middle East, designed specifically for Arabic users. It is an Office […]
Severity: HIGH Analysis Summary Following vulnerabilities are found in Siemens CP1604 and CP1616: CVE-2018-13808 – CLEARTEXT TRANSMISSION OF SENSITIVE INFORMATION An attacker with network access to […]